<div id="review">
    <meta http-equiv="Content-type" content="text/html; charset=utf-8" />
    <?php
    if (isset($_POST['payment']))
        $_SESSION['billing_payment'] = $_POST['payment'];
    $_SESSION['readonly'] = true;
    require 'basket.inc.php';
    ?>
    <div class="review_separator"></div>
    <?php require 'billing.inc.php'; ?>
    <div class="review_separator"></div>
    <?php
    require 'payments.inc.php';
    $_SESSION['readonly'] = false;
    ?>
    <div class="review_separator"></div>
    <form id="order_form_submit" name="order_form" action="/checkout/" method="post" onSubmit="return validate(order_form)">
        <input type="hidden" name="payment" value="<?php echo $payment; ?>" />
        <div style="margin-left: 25px">
            <div id="customdata">
                <?php if ($payment == "prepayment") {
                ?>
                    <span style="font-size: 20px;">
                        Bitte überweisen Sie den Betrag auf folgendes Konto:<br />
                        <strong>Markus Reich</strong><br />
                        Kto.Nr. 72.001.001<br />
                        BLZ 60000<br />
                    </span>
                <?php } // prepayment  ?>
                <?php if ($payment == "creditcard") {
 ?>
                    <label>Kreditkarte:*</label>
                    <select id="creditcard" tabindex="1" name="creditcard">
                        <option id="MasterCard">MasterCard</option>
                        <option id="Visa">Visa</option>
                        <option id="Amex">Amex</option>
                        <option id="Discover">Discover</option>
                    </select>
                    <br />
                    <label>Kreditkartennummer:*</label>
                    <input type="text"  tabindex="2" name="ccnumber" onkeypress='validateNumbersOnly(event)'/>
                    <br />
                    <label>Gültig bis (Monat/Jahr):*</label>
                    <input type="text" tabindex="3" name="expiredatemonth" maxlength="2" size="2" onkeypress='validateNumbersOnly(event)'/>
                    <input type="text" tabindex="4" name="expiredateyear" maxlength="4" size="4" onkeypress='validateNumbersOnly(event)'/>
                    <br />
                    <label>CVV:*</label>
                    <input type="text" tabindex="5" name="cvv" size="3" onkeypress='validateNumbersOnly(event)'/>
<?php } // creditcard    ?>
            </div>
        </div>
        <table cellpadding="0" cellspacing="0" border="0" width="930px">
            <tr><td colspan="4" style="font-size:0px; height:10px;"></td></tr>
            <tr>
                <td colspan="2"><a href="<?php echo $loc . 'payments/'; ?>"><img src="/images/spacer.gif" class="spritebg continueshop" /></a></td>

                <td colspan="2" style="text-align: right;">
                    <input type="image" src="/images/spacer.gif" class="spritebg checkout" />
                </td>
            </tr>
        </table>
    </form>
</div>
<SCRIPT LANGUAGE="JavaScript">
    <!--
    function validate(frm) {
        if (frm.payment.value != 'creditcard') return true;
        if (frm.ccnumber.value.length == 0) {
            alert("Kreditkartennummer ist ein Mußfeld!")
            frm.ccnumber.focus()
            return false
        }
        if (frm.expiredatemonth.value.length == 0 || frm.expiredateyear.value.length == 0) {
            alert("Gültig bis ist ein Mußfeld!")
            frm.expiredatemonth.focus()
            return false
        }
        if (frm.cvv.value.length == 0) {
            alert("CVV ist ein Mußfeld!")
            frm.cvv.focus()
            return false
        }
    }

    function validateNumbersOnly(evt) {
        var theEvent = evt || window.event;
        var key = theEvent.keyCode || theEvent.which;
        key = String.fromCharCode( key );
        if(key == '\b' || key == '\t') return;
        var regex = /[0-9]/;
        if( !regex.test(key) ) {
            theEvent.returnValue = false;
            theEvent.preventDefault();
        }
    }
    //-->
</SCRIPT>